CookCredit Terms Privacy Biometric Accessibility

CookCredit Skill Biometric Data Retention and Destruction Schedule

Effective date: August 22, 2026 Last updated: August 22, 2026 Version: 1.0

1. Purpose and scope

CookCredit LLC publishes this schedule for camera-derived hand-motion information processed by CookCredit Skill. CookCredit applies this schedule conservatively to wrist and hand-landmark measurements, motion trajectories, linked assessment metrics, and private recordings even where a particular jurisdiction might define biometric information differently.

This schedule is intended to establish a public retention schedule and permanent-destruction guidelines consistent with Section 15(a) of the Illinois Biometric Information Privacy Act.

2. Retention schedule

Data stateDestruction schedule
Browser-only recording and hand-motion analysisKept only for the active page/session and removed when the user deletes it from the page or the browser releases the session. CookCredit does not receive this data.
Optional private recording, assessment measurements, and linked consent receiptPermanently deleted from active CookCredit Skill storage no later than 90 days after upload, or sooner when the user deletes the assessment, deletes all CookCredit Skill data, or submits a verified withdrawal/deletion request.
Temporary account-export ZIPPermanently deleted from active storage no later than 24 hours after creation.
Destruction audit eventMay be retained without the recording or hand-motion data to document that deletion occurred. Owner references in operational logs are pseudonymous.

The 90-day period is an outside maximum, not a minimum. CookCredit destroys covered information earlier when its purpose has been satisfied or the user requests deletion. The period does not restart merely because the user returns to CookCredit.

3. Destruction process

CookCredit uses an hourly server-side retention process. Each optional upload receives a fixed expiration timestamp and a server-controlled queue entry. At or after expiration, the process:

  1. deletes the recording or export object from active Cloud Storage;
  2. deletes the linked assessment or export record from Firestore;
  3. removes the retention-queue entry; and
  4. writes an operational event containing counts or a pseudonymous owner reference, not the

recording or hand-motion data.

User-requested deletion follows the same storage-first order. Failed deletion attempts are retried and surfaced through operational logging and alerts.

After deletion from active systems, residual encrypted copies may remain temporarily in provider-managed disaster-recovery systems that are isolated from normal product access. Those copies expire through the provider's recovery lifecycle and are not restored for ordinary product use. If disaster recovery restores data before those copies expire, CookCredit will reapply the original expiration and deletion state.

4. Exceptions

CookCredit will not extend the 90-day product-retention period for analytics, research, or model training. A narrow delay may apply when preservation is required by a valid warrant, subpoena, court order, or other binding legal obligation. When the obligation ends, destruction resumes.

5. Sale, profit, and disclosure restrictions

CookCredit does not sell, lease, trade, or otherwise profit from covered hand-motion or biometric information. Disclosure is limited to the user's direction, service providers needed to operate CookCredit Skill, safety and security needs permitted by law, and valid legal requirements.

6. Governance

Policy owner: CookCredit LLC Review cadence: At least annually and before any material change to collection, purpose, storage, or retention. Contact: connectwithus@cookcredit.com

7. Version history

VersionDateChange
1.0August 22, 2026Initial 90-day CookCredit Skill schedule.

© 2026 CookCredit LLC · 683 Grant St SE, Atlanta, GA 30315 · connectwithus@cookcredit.com